tokendisbursement.xyz
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of tokendisbursement.xyz
tokendisbursement.xyz appears to be a cryptocurrency-themed landing page promoting a token airdrop under the name "Red Kitten Crew." Based on the screenshot, the site advertises an "$RKC Airdrop," invites users to "Connect Wallet," and presents itself as a platform for discovering or claiming token distributions tied to blockchain projects in the Solana ecosystem. It also links out to community channels on Discord, Telegram, and X, which is a common pattern for small crypto communities and token campaigns.
The domain name itself emphasizes "token disbursement," which suggests a focus on distributing digital assets or rewards rather than providing a broad exchange or wallet service. No clear corporate operator, legal entity, or established business identity is visible in the provided scan data, and the site appears to function more like a promotional crypto campaign page than a mature financial platform. The branding references several known Solana-related project names and logos, which may be intended to signal ecosystem relevance or legitimacy.
Safety Assessment for tokendisbursement.xyz
This website shows several risk indicators at the time of this scan. It was flagged by 5 out of 91 security engines, with multiple classifications pointing to phishing or fraud-related concerns, and web-classification sources also labeled it as phishing or elevated exposure. The domain is extremely new at just 1 day old, has no established traffic ranking, and the page encourages visitors to connect a cryptocurrency wallet in order to participate in an airdrop. In practice, newly registered crypto airdrop pages that request wallet interaction may carry elevated risk because they can be used to harvest credentials, trigger malicious wallet approvals, or lure users into fraudulent token claims.
At the same time, not every scan signal was negative. The malware scan reported no flagged files, and major blacklist and threat-database checks were clean at the time of this scan. However, clean blacklist status on a very new domain does not necessarily remove concern, because newly launched phishing pages may appear before broader blocklists catch up. The combination of multi-engine phishing detections, very recent registration, and wallet-connection prompts is more significant than the absence of file-based malware findings.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid Let's Encrypt SSL certificate and is served through Cloudflare infrastructure, with the resolved IP associated with Cloudflare hosting in Canada. Nameservers also point to Cloudflare, which suggests the operator is using a CDN and reverse-proxy setup rather than exposing origin infrastructure directly. HTTPS availability is a positive baseline signal for transport security, but it should not be treated as proof of legitimacy.
From a domain-security perspective, the registration is extremely recent, DNSSEC appears to be unsigned, and the registrar is listed as OwnRegistrar, Inc. The scan did not identify malicious files, flagged outbound links, or iframe abuse, but the site's crypto-wallet interaction model and phishing-related detections remain the more relevant concerns at the time of this scan.
Share your experience with this website. Was it safe? Did you encounter any issues?